Great Reviews!Need help setting up your website, installing Apache, PHP, MySQL, or PhpNuke?Need help customizing or designing scripts?Please contact me via the Contact Us option for further details and pricing.
DESCRIPTION: A vulnerability has been reported in WinAce, which can be exploited by malicious people to compromise a user's system.
The vulnerability is caused due to a boundary error when decompressing UUE files and can be exploited to cause a heap-based buffer overflow via a specially crafted UUE file containing an overly long filename. Successful exploitation may allow execution of arbitrary code. The vulnerability is reported in version 2.65. Other versions may also be affected.
SOLUTION: Update to version 2.69. - http://www.winace.com/down.html
PROVIDED AND/OR DISCOVERED BY: Fourteenforty Research Institute
ORIGINAL ADVISORY: http://www.fourteenforty.jp/research/advisory.cgi?FFRRA-20071225
OTHER REFERENCES: JVN: http://jvn.jp/jp/JVN%2344736880/index.html
Posted on Tuesday, December 25, 2007 @ 18:37:46 EST by Raven